CVE-2024-1076 Information
May 10, 2024
cve
Description
The SSL Zen WordPress plugin before 4.6.0 only relies on the use of .htaccess to prevent visitors from accessing the site’s generated private keys which allows an attacker to read them if the site runs on a server who doesn’t support .htaccess files like NGINX.
Reference
https://wpscan.com/vulnerability/9c3e9c72-3d6c-4e2c-bb8a-f4efce1371d5/
Share on: